Vulnerability Name: | CVE-2011-2563 (CCN-69397) | ||||||||
Assigned: | 2011-08-24 | ||||||||
Published: | 2011-08-24 | ||||||||
Updated: | 2011-10-06 | ||||||||
Summary: | Unspecified vulnerability in the Service Advertisement Framework (SAF) in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 8.x before 8.5(1) and Cisco Intercompany Media Engine 8.x before 8.5(1) allows remote attackers to cause a denial of service (device reload) via crafted SAF packets, aka Bug ID CSCth26669. | ||||||||
CVSS v3 Severity: | 7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
| ||||||||
CVSS v2 Severity: | 7.8 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C) 5.8 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
5.8 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: MITRE Type: CNA CVE-2011-2563 Source: CCN Type: SA45738 Cisco Unified Communications Manager Multiple Denial of Service Vulnerabilities Source: CCN Type: SA45743 Cisco Intercompany Media Engine Service Advertisement Framework Denial of Service Source: CISCO Type: Vendor Advisory 20110824 Cisco Unified Communications Manager Denial of Service Vulnerabilities Source: CISCO Type: Vendor Advisory 20110824 Denial of Service Vulnerabilities in Cisco Intercompany Media Engine Source: CCN Type: cisco-sa-20110824-ime Cisco Security Advisory: Denial of Service Vulnerabilities in Cisco Intercompany Media Engine Source: CCN Type: OSVDB ID: 74776 Cisco Unified Communications Manager Service Advertisement Framework (SAF) Packet Parsing Remote DoS (2011-2563) Source: CCN Type: BID-49300 Cisco Intercompany Media Engine SAF Packets Handling Multiple Denial of Service Vulnerabilities Source: SECTRACK Type: UNKNOWN 1025969 Source: XF Type: UNKNOWN cisco-ime-saf-dos(69397) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Denotes that component is vulnerable | ||||||||
BACK |